what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 1 of 1 RSS Feed

Files

Mandriva Linux Security Advisory 2010-042
Posted Feb 20, 2010
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2010-042 - Mozilla developers identified and fixed several stability bugs in the browser engine used in Firefox and other Mozilla-based products. Security researcher Orlando Barrera II reported via TippingPoint's Zero Day Initiative that Mozilla's implementation of Web Workers contained an error in its handling of array data types when processing posted messages. Security researcher Alin Rad Pop of Secunia Research reported that the HTML parser incorrectly freed used memory when insufficient space was available to process remaining input. Security researcher Hidetake Jo of Microsoft Vulnerability Research reported that the properties set on an object passed to showModalDialog were readable by the document contained in the dialog, even when the document was from a different domain. An anonymous security researcher, via TippingPoint's Zero Day Initiative, also independently reported this issue to Mozilla. Mozilla security researcher Georgi Guninski reported that when a SVG document which is served with Content-Type: application/octet-stream is embedded into another document via an <embed> tag with type=image/svg+xml, the Content-Type is ignored and the SVG document is processed normally.

tags | advisory, web
systems | linux, mandriva
advisories | CVE-2010-0159, CVE-2010-0160, CVE-2009-1571, CVE-2009-3988, CVE-2010-0162
SHA-256 | a42fca829597b4d04530aecbd3489fbc953673632a811b940733249bb9828ba8
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Report: Wartime Hacking Is Spilling Into The Financial Sector
Posted Mar 22, 2023

tags | headline, government, bank, russia, denial of service, cyberwar, military, ukraine
German Political Parties Accused Of Microtargeting Voters On Facebook
Posted Mar 22, 2023

tags | headline, government, fraud, germany, facebook
Ferrari In A Spin As Crims Steal A Car-Load Of Customer Data
Posted Mar 21, 2023

tags | headline, privacy, data loss, italy
What Is The Microsoft Print Spooler Vulnerability?
Posted Mar 21, 2023

tags | headline, microsoft, flaw
Nation-State Threat Actors Exploited Zero Days The Most In 2022
Posted Mar 21, 2023

tags | headline, hacker, government, cyberwar, zero day
Ex-Meta Security Staffer Accuses Greece Of Spying On Her Phone
Posted Mar 21, 2023

tags | headline, government, privacy, phone, spyware, facebook, greece
Fighting VPN Criminalization Should Be Big Tech's Top Priority
Posted Mar 20, 2023

tags | headline, government, privacy, spyware, iran, cryptography
Go-Based HinataBot Latest Botnet To Focus On DDoS Attacks
Posted Mar 20, 2023

tags | headline, hacker, denial of service, botnet
Chinese Warships Seem To Be Messing With Passenger Planes
Posted Mar 20, 2023

tags | headline, government, australia, china, cyberwar, terror, military
Inside The DEA Tool Hackers Allegedly Used To Extort Targets
Posted Mar 20, 2023

tags | headline, hacker, government, usa, cybercrime, data loss
View More News →
packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close